NA

CVE-2022-37190

Published: 13/09/2022 Updated: 08/08/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

CuppaCMS 1.0 is vulnerable to Remote Code Execution (RCE). An authenticated user can control both parameters (action and function) from "/api/index.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cuppacms cuppacms 1.0